ClamAV多个整数溢出漏洞
2008-04-10 03:02:33来源:互联网 阅读 ()
发布日期:2005-08-16
更新日期:2005-08-17
受影响系统:
ClamAV ClamAV < 0.86.2不受影响系统:
ClamAV ClamAV 0.86.2描述:
BUGTRAQ ID: 14359
CVE(CAN) ID: CVE-2005-2450
Clam AntiVirus是Unix的GPL杀毒工具包,很多邮件网关产品都在使用。
ClamAV中存在多个整数溢出漏洞。如果ClamAV病毒库处理了畸形的TNEF、CHM和FSG格式文件的话,攻击者就可以控制执行流,执行攻击者所提供的代码。
<*来源:Neel Mehta
Alex Wheeler
链接:http://www.debian.org/security/2005/dsa-776
http://security.gentoo.org/glsa/glsa-200507-25.xml
*>
建议:
厂商补丁:
Debian
------
Debian已经为此发布了一个安全公告(DSA-776-1)以及相应补丁:
DSA-776-1:New clamav packages fix several problems
链接:http://www.debian.org/security/2005/dsa-776
补丁下载:
Source archives:
http://security.debian.org/pool/updates/main/c/clamav/clamav_0.84-2.sarge.2.dsc
Size/MD5 checksum: 872 a5d90ac557b114453e0935d95bca8e17
http://security.debian.org/pool/updates/main/c/clamav/clamav_0.84-2.sarge.2.diff.gz
Size/MD5 checksum: 169363 b12ac60c0652f68db9116aad830cde7f
http://security.debian.org/pool/updates/main/c/clamav/clamav_0.84.orig.tar.gz
Size/MD5 checksum: 4006624 c43213da01d510faf117daa9a4d5326c
Architecture independent components:
http://security.debian.org/pool/updates/main/c/clamav/clamav-base_0.84-2.sarge.2_all.deb
Size/MD5 checksum: 154106 03b1f4f5addba27a157b0a6676555ff8
http://security.debian.org/pool/updates/main/c/clamav/clamav-docs_0.84-2.sarge.2_all.deb
Size/MD5 checksum: 689748 84683f319f4c9a8f7e4d1d77d747396c
http://security.debian.org/pool/updates/main/c/clamav/clamav-testfiles_0.84-2.sarge.2_all.deb
Size/MD5 checksum: 123118 58fea3ad4fcc2611f69af0f2ba455af8
Alpha architecture:
http://security.debian.org/pool/updates/main/c/clamav/clamav_0.84-2.sarge.2_alpha.deb
Size/MD5 checksum: 74676 3f1d00637a7028c7012c3fe51e1383f4
http://security.debian.org/pool/updates/main/c/clamav/clamav-daemon_0.84-2.sarge.2_alpha.deb
Size/MD5 checksum: 48782 937bbc75d644b6c7a2e0ec7b5daa5bf6
http://security.debian.org/pool/updates/main/c/clamav/clamav-freshclam_0.84-2.sarge.2_alpha.deb
Size/MD5 checksum: 2176324 0e6a0ae9d5ec4b68ed0e8bc688bbfb68
http://security.debian.org/pool/updates/main/c/clamav/clamav-milter_0.84-2.sarge.2_alpha.deb
Size/MD5 checksum: 42116 bdc3ae3b34c0a9be2eb8621cc3177676
http://security.debian.org/pool/updates/main/c/clamav/libclamav-dev_0.84-2.sarge.2_alpha.deb
Size/MD5 checksum: 254548 5db908c37914f6fd06b2f3d689de0b81
http://security.debian.org/pool/updates/main/c/clamav/libclamav1_0.84-2.sarge.2_alpha.deb
Size/MD5 checksum: 283680 1e88b3d96000f0a1c5cf8a2cd0aad493
AMD64 architecture:
http://security.debian.org/pool/updates/main/c/clamav/clamav_0.84-2.sarge.2_amd64.deb
Size/MD5 checksum: 68866 07f764af8962cda289e92a0f7ca2d81a
http://security.debian.org/pool/updates/main/c/clamav/clamav-daemon_0.84-2.sarge.2_amd64.deb
Size/MD5 checksum: 44182 8d7dbb6148610b78c81ce135dbf9c7f8
http://security.debian.org/pool/updates/main/c/clamav/clamav-freshclam_0.84-2.sarge.2_amd64.deb
Size/MD5 checksum: 2173198 615c7b237d3a4993550955e00e605135
http://security.debian.org/pool/updates/main/c/clamav/clamav-milter_0.84-2.sarge.2_amd64.deb
Size/MD5 checksum: 40010 6941c36e7db2e48dc78f0a97e1b83aed
http://security.debian.org/pool/updates/main/c/clamav/libclamav-dev_0.84-2.sarge.2_amd64.deb
Size/MD5 checksum: 175358 ce3229e6277efe07443593432d194e8b
http://security.debian.org/pool/updates/main/c/clamav/libclamav1_0.84-2.sarge.2_amd64.deb
Size/MD5 checksum: 257690 c590d1a69e5899e75ef907d55ee2510a
ARM architecture:
http://security.debian.org/pool/updates/main/c/clamav/clamav_0.84-2.sarge.2_arm.deb
Size/MD5 checksum: 63820 5871903c9f4789757ca2dda256a29197
http://security.debian.org/pool/updates/main/c/clamav/clamav-daemon_0.84-2.sarge.2_arm.deb
Size/MD5 checksum: 39504 bb7f439e8c7e0c7345ac37e537bb1db1
http://security.debian.org/pool/updates/main/c/clamav/clamav-freshclam_0.84-2.sarge.2_arm.deb
Size/MD5 checksum: 2171180 a13279483c8265842b3b1e8641814fd5
http://security.debian.org/pool/updates/main/c/clamav/clamav-milter_0.84-2.sarge.2_arm.deb
Size/MD5 checksum: 37302 b1400e02bbf2889e0befd15012ca1699
http://security.debian.org/pool/updates/main/c/clamav/libclamav-dev_0.84-2.sarge.2_arm.deb
Size/MD5 checksum: 173514 a063023f5ad8e3d21896f21782f05be7
http://security.debian.org/pool/updates/main/c/clamav/libclamav1_0.84-2.sarge.2_arm.deb
标签:
版权申明:本站文章部分自网络,如有侵权,请联系:west999com@outlook.com
特别注意:本站所有转载文章言论不代表本站观点,本站所提供的摄影照片,插画,设计作品,如需使用,请与原作者联系,版权归原作者所有
IDC资讯: 主机资讯 注册资讯 托管资讯 vps资讯 网站建设
网站运营: 建站经验 策划盈利 搜索优化 网站推广 免费资源
网络编程: Asp.Net编程 Asp编程 Php编程 Xml编程 Access Mssql Mysql 其它
服务器技术: Web服务器 Ftp服务器 Mail服务器 Dns服务器 安全防护
软件技巧: 其它软件 Word Excel Powerpoint Ghost Vista QQ空间 QQ FlashGet 迅雷
网页制作: FrontPages Dreamweaver Javascript css photoshop fireworks Flash